An ESXi host’s VMCA-Signed certificate has expired. How can the certificate be renewed?
A. In the vSphere Web Client, browse to the host in question. Click the Manage tab and select settings.
Select System and click Certificate, then click the Renew button.
B. In the vSphere Web Client, browse to the host in question. Click the Manage tab and select settings.
Select System and click Certificate, then click the Refresh CA Certificates button.
C. Run the command /sbin/generate-certificates on the affected host.
D. Disconnect the host from vCenter Server and reconnect it.
D
Option D is the correct one.
If the certificate is about to expire, A stands good. But if cert has already expired, it has to be disconnected.
https://docs.vmware.com/en/VMware-vSphere/6.5/com.vmware.vsphere.security.doc/GUID-ECFD1A29-0534-4118-B762-967A113D5CAA.html
Check 2nd paragraph
Wouldn’t B only apply if these were CA signed certs?
The answer should be A.